~ ZHPDiag v2016.5.6.94 By Nicolas Coolman (2016/05/06) ~ Run by رياض (Administrator) (2016/05/07 15:37:27) ~ Web: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\رياض\Desktop\ZHPDiag.txt ~ Report: C:\Users\رياض\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System startup: Normal (Normal boot) Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601) ---\\ Internet Browsers (3) - 0s GCIE: Google Chrome v50.0.2661.94 MFIE: Mozilla Firefox 6.0 (x86 ar) MSIE: Internet Explorer v11.0.9600.17107 ---\\ Windows Product Information (5) - 0s Windows Server License Manager Script : Absent (Not found) Windows ID Activation : Inconnue (Unknown) Windows Licence : Inconnue (Unknown) Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System protection software (1) - 1s Kaspersky Internet Security v15.0.0.463 ---\\ System optimization software (1) - 1s CCleaner v4.04 ---\\ Surveillance software (1) - 1s Adobe Flash Player 21 NPAPI ---\\ Information on the system (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 1038.84 MB (25% free) System Restore: Activé (Enable) System drive C: has 55 GB () free of 80 GB ---\\ Connection to the system mode (3) - 0s ~ Computer Name: رياض-PC ~ User Name: رياض ~ Logged in as Administrator ---\\ Enumeration of the disk units (5) - 16s ~ Drive C: has 55 GB free of 80 GB (System) ~ Drive D: has 53 GB free of 80 GB ~ Drive E: has 72 GB free of 80 GB ~ Drive F: has 231 GB free of 236 GB ~ Drive G: has GB free of 0 GB ---\\ State of the Windows Security Center (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Search Generic System Files (25) - 9s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - 25/02/2011 - (.Microsoft Corporation - مستكشف Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - عملية مضيف Windows (Rundll32)‎.) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - ‎‎تطبيق بدء تشغيل Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation [MD5.E4E829EE073E046B0EB19B5FECB19B8C] - 20/05/2014 - (.Microsoft Corporation - ملحقات الإنترنت لـ Win32.) -- C:\Windows\System32\wininet.dll [1789440] =>.Microsoft Corporation [MD5.998507B046BA314CE8245364C686FA67] - 04/03/2014 - (.Microsoft Corporation - تطبيق تسجيل دخول Windows.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation [MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - مكتبة تراخيص البرامج.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - مكتبة الارتباط الديناميكي لواجهة برمجة تطبي.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.4A1DDEFCD5C41BFABF2AFE14AE5D91CF] - 24/04/2012 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.F81BB7E487EDCEAB630A7EE66CF23913] - 20/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation [MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation [MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - برنامج تشغيل منفذ i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation [MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - 27/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123904] =>.Microsoft Corporation [MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation [MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - 12/04/2013 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1211752] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - برنامج تشغيل المنفذ المتوازي.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation [MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation [MD5.B459575348C20E8121D6039DA063C704] - 20/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation [MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - برنامج تشغيل خدمة ملفات الظل الاحتياطية لوح.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows® ---\\ Non Microsoft non disabled Windows Services (6) - 4s O23 - Service: Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe =>.Kaspersky Lab® O23 - Service: خدمة Google Update (gupdate) (gupdate) . (.Google Inc. - مثبِّت Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008 - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService.exe =>.HUAWEI Technologies Co., Ltd.® O23 - Service: MobiConnect. OUC (MobiConnect. RunOuc) . (...) - C:\Program Files\MobiConnect\UpdateDog\ouc.exe =>.Huawei Technologies Co., Ltd.® O23 - Service: NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe =>.Nitro PDF Software® O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) . (.Ralink Technology, Corp. - RalinkRegistryWriter.) - C:\Program Files\Ralink\Common\RaRegistry.exe =>.Ralink Technology Corporation® ---\\ Services not Microsoft (SR=Run, SS=Stop) (10) - 187s SS - Demand [30/04/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [20/04/2014] [ 233552] Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) . (.Kaspersky Lab ZAO.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe =>.Kaspersky Lab® SS - Auto [29/04/2016] [ 154440] خدمة Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/04/2016] [ 154440] خدمة Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [14/03/2011] [ 271712] HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008.) - C:\ProgramData\DatacardService\HWDeviceService.exe =>.HUAWEI Technologies Co., Ltd.® SS - Auto [21/05/2013] [ 656976] MobiConnect. OUC (MobiConnect. RunOuc) . (...) - C:\Program Files\MobiConnect\UpdateDog\ouc.exe =>.Huawei Technologies Co., Ltd.® SR - Auto [05/03/2013] [ 196616] NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software.) - C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe =>.Nitro PDF Software® SR - Auto [11/11/2010] [ 374112] Ralink Registry Writer (RalinkRegistryWriter) . (.Ralink Technology, Corp..) - C:\Program Files\Ralink\Common\RaRegistry.exe =>.Ralink Technology Corporation® SS - Demand [31/12/2010] [ 619872] RaMediaServer (RaMediaServer) . (...) - C:\Program Files\Ralink\Common\RaMediaServer.exe =>.Ralink Technology Corporation® ---\\ Process running (22) - 24s [MD5.98F101E69EA59EFAE909EEDD16E434B5] - (.Gsi Technologies - .) -- C:\Program Files\Golden Filter Premium\GFPro.exe [1650688] [PID.1756] [MD5.B70BCC55743C5A5BD7C7C6D6A02BB6F9] - (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\Windows\SOUNDMAN.EXE [604704] [PID.1764] =>.Realtek Semiconductor Corp® [MD5.3C3B12E14B24EFB6A52B5582240B8946] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3405208] [PID.1772] =>.Tonec Inc. [MD5.A1F86A5A0DA1BEC12B7DD19C6234BB15] - (...) -- C:\Users\رياض\Local Settings\Apps\F.lux\flux.exe [966656] [PID.1780] [MD5.DF37DE4EB253CC67CB6B9D0B1BC69463] - (.Ralink Technology, Corp. - Ralink Wireless LAN Card Utility.) -- C:\Program Files\Ralink\Common\RaUI.exe [11474272] [PID.1796] =>.Ralink Technology Corporation® [MD5.058734C95991F6BEBF3D3075B8776234] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [233552] [PID.2004] =>.Kaspersky Lab® [MD5.001C8273B6A21A4B8DA10CDCE833EC4A] - (.Gsi Technologies - .) -- C:\Windows\System32\mssvr32.exe [77824] [PID.388] [MD5.5EF3427AE503B5C03A48F7C9FF458B69] - (.Copyright (C) 2008 - DCSHOST.) -- C:\ProgramData\DatacardService\HWDeviceService.exe [271712] [PID.456] =>.HUAWEI Technologies Co., Ltd.® [MD5.349AB4F70E2AC44970894E7F03E1576E] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [236384] [PID.808] =>.HUAWEI Technologies Co., Ltd.® [MD5.29DF2514FCED0B7F8E449933EF6E6918] - (...) -- C:\ProgramData\MobiConnect\OnlineUpdate\ouc.exe [656976] [PID.1292] =>.Huawei Technologies Co., Ltd.® [MD5.162888FC2BE9E4884FEA7481902C5ADC] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616] [PID.1304] =>.Nitro PDF Software® [MD5.3FC8252625F2574036777D2981F839EE] - (.Ralink Technology, Corp. - RalinkRegistryWriter.) -- C:\Program Files\Ralink\Common\RaRegistry.exe [374112] [PID.2168] =>.Ralink Technology Corporation® [MD5.ABF64234F3462571E66527828040219B] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.29.5\GoogleCrashHandler.exe [252232] [PID.2952] =>.Google Inc® [MD5.A446F3898F1CE9989ACB3F6E758E179B] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avpui.exe [192160] [PID.2988] =>.Kaspersky Lab® [MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.3692] =>.Google Inc® [MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.3756] =>.Google Inc® [MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.3128] =>.Google Inc® [MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.2924] =>.Google Inc® [MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.1336] =>.Google Inc® [MD5.9B232B25474B8592999632F346C0B12B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\رياض\Desktop\ZHPDiag3.exe [2201600] [PID.3408] =>.Nicolas Coolman [MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.3724] =>.Google Inc® [MD5.058734C95991F6BEBF3D3075B8776234] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [233552] [PID.3908] =>.Kaspersky Lab® ---\\ Google Chrome, Start,Search,Extensions (4) - 1s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://search.speedbit.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://home.speedbit.com/ G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (1) - 0s M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ---\\ Internet Explorer Extensions, Start, Search (11) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mysearch.avg.com?cid={38861EE3-51FC-44A7-877F-881524EAB58C}&mid=4c528b1b5ede47d09163d17921622c30-06ce4fc639803a2e3563922518183d8e94088cb9&lang=fr&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2015-02-09 20:24:22&v=4.0.6.10&pid=wtu&sg=&sap=hp =>PUP.Optional.MyWebSearch R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/ R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer, Proxy Management (7) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 1s F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Hosts file redirection (1) - 10s ~ Le fichier hôte est sain (The hosts file is clean) (15516) ---\\ Browser Helper Object (BHO) (8) - 6s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} . (.Kaspersky Lab ZAO - Content Blocker Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll =>.Kaspersky Lab® O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} . (.Kaspersky Lab ZAO - Virtual Keyboard Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll =>.Kaspersky Lab® O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} (Orphean) O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} . (.Kaspersky Lab ZAO - Safe Money Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll =>.Kaspersky Lab® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll =>.Oracle America, Inc.® O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} . (.Kaspersky Lab ZAO - URL Advisor Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll =>.Kaspersky Lab® ---\\ Auto loading programs from Registry and folders (8) - 4s O4 - HKLM\..\Run: [GoldenFilterPro] . (.Gsi Technologies - .) -- C:\Program Files\Golden Filter Premium\GFPro.exe O4 - HKLM\..\Run: [SoundMan] . (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\Windows\SOUNDMAN.EXE =>.Realtek Semiconductor Corp® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [F.lux] . (...) -- C:\Users\رياض\Local Settings\Apps\F.lux\flux.exe O4 - HKCU\..\Run: [ManyCam] . (.Visicom Media Inc. - ManyCam Virtual Webcam.) -- C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia O4 - HKUS\S-1-5-21-3488952640-1886036067-2608822963-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-3488952640-1886036067-2608822963-1000\..\Run: [F.lux] . (...) -- C:\Users\رياض\Local Settings\Apps\F.lux\flux.exe O4 - HKUS\S-1-5-21-3488952640-1886036067-2608822963-1000\..\Run: [ManyCam] . (.Visicom Media Inc. - ManyCam Virtual Webcam.) -- C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia ---\\ Global shortcuts Startup (32) - 53s O4 - GS\Desktop [Administrator]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [Administrator]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC} O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\رياض\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia O4 - GS\Quicklaunch [Administrator]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [Guest]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [Guest]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC} O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\رياض\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia O4 - GS\Quicklaunch [Guest]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [رياض]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [رياض]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC} O4 - GS\Desktop [رياض]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\رياض\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [رياض]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [رياض]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia O4 - GS\Quicklaunch [رياض]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\TaskBar [رياض]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [رياض]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia O4 - GS\CommonDesktop [Public]: MobiConnect.lnk . (...) C:\Program Files\MobiConnect\MobiConnect.exe O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Nitro Pro 8.lnk . (.Nitro PDF - Nitro Pro 8.) C:\Program Files\Nitro\Pro 8\NitroPDF.exe =>.Nitro PDF Software® O4 - GS\Startup [Public]: Ralink Wireless Utility.lnk . (.Ralink Technology, Corp. - Ralink Wireless LAN Card Utility.) C:\Program Files\Ralink\Common\RaUI.exe =>.Ralink Technology Corporation® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Lop.com/Domain Hijackers (14) - 0s O17 - HKLM\System\CCS\Services\Tcpip\..\{1429D174-A49A-4D51-A19B-F762FFE5471B}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{2EF583AC-4840-43C9-88B8-CE4C80E668B6}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS O17 - HKLM\System\CCS\Services\Tcpip\..\{3D6BB332-A870-48AF-8358-1210F1F3A3BD}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{3F609C51-14F6-455A-A5A4-1472517BB17A}: NameServer = 8.8.8.8 0.0.0.0 O17 - HKLM\System\CCS\Services\Tcpip\..\{44FDC2AD-20F2-4EC2-874F-154E3B793A34}: NameServer = 208.67.222.222,41.221.20.4 O17 - HKLM\System\CCS\Services\Tcpip\..\{4FCD83E8-9667-4863-A31B-B91F7416A1E6}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{55FF1682-D814-4285-8A59-11760D20341C}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{59129682-C464-4BEE-B2F3-65FC8FA08609}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS O17 - HKLM\System\CCS\Services\Tcpip\..\{793DEFE7-7CC9-4477-AECF-FA65109AD073}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{93840BFD-602D-4A6C-A81E-B0C84D1E0726}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{B67DFCF3-C04D-4398-A180-EEC0B281F4B2}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{C86BC538-96CF-46BB-BFCC-11C304BEA675}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{DFE741B9-A817-4993-8094-35E688DB06CD}: NameServer = 8.8.8.8 193.251.169.165 O17 - HKLM\System\CCS\Services\Tcpip\..\{44FDC2AD-20F2-4EC2-874F-154E3B793A34}: DhcpNameServer = 192.168.1.1 ---\\ Extra protocols (23) - 3s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - عنصر تحكم ActiveX للفيديو المتدفق.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.DLL =>.Microsoft Corporation® O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - عنصر تحكم ActiveX للفيديو المتدفق.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software installed (27) - 64s O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} =>.Cisco Systems, Inc. O42 - Logiciel: F.lux - (...) [HKCU] -- Flux O42 - Logiciel: Golden Filter Premium 3.1 - (.Gsi Technologies.) [HKLM] -- Golden Filter Premium O42 - Logiciel: Google Chrome - (.Google Inc‎.‎.) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Java 7 Update 17 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217017FF} =>.Oracle O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc. O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- {653C1B5A-3287-47B1-8613-0745D4E771C4} =>.Kaspersky Lab O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{653C1B5A-3287-47B1-8613-0745D4E771C4} =>.Kaspersky Lab O42 - Logiciel: ManyCam 4.0.77 - (.Visicom Media Inc..) [HKLM] -- ManyCam =>.Superfluous.VisicomMedia O42 - Logiciel: MobiConnect - (.Huawei Technologies Co.,Ltd.) [HKLM] -- MobiConnect =>.Huawei Technologies Co.,Ltd O42 - Logiciel: Mozilla Firefox 6.0 (x86 ar) - (.Mozilla.) [HKLM] -- Mozilla Firefox 6.0 (x86 ar) =>.Mozilla Corporation® O42 - Logiciel: Nitro Pro 8 - (.Nitro.) [HKLM] -- {C41DBC07-C9C2-4B8C-BD85-46ED6853AD6B} =>.Nitro O42 - Logiciel: PL-2303 USB-to-Serial - (...) [HKLM] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} O42 - Logiciel: Ralink RT2870 Wireless LAN Card - (.Ralink.) [HKLM] -- {28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D} =>.Ralink Technology Corporation® O42 - Logiciel: Realtek AC'97 Audio - (...) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E} O42 - Logiciel: TuneUp Utilities 2014 (en-US) - (.TuneUp Software.) [HKLM] -- {14C8CE46-C68C-461B-BCA9-E276A85851C6} =>.TuneUp Software O42 - Logiciel: TuneUp Utilities Language Pack (en-US) - (.TuneUp Software.) [HKLM] -- {A6F5703D-A4B1-4857-9EDD-DC0ABBBB0D96} =>.TuneUp Software O42 - Logiciel: WinRAR archiver - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH O42 - Logiciel: Your Uninstaller! 7 - (.URSoft, Inc..) [HKLM] -- YU2010_is1 {2D52C7CF5E69A633AC3AED0E78F988DC} O42 - Logiciel: حزمة التوافق لنظام Office 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-0401-0000-0000000FF1CE} =>.Microsoft Corporation ---\\ HKCU & HKLM Software Keys (115) - 64s HKLM\SOFTWARE\AceTools HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\csc22 HKLM\SOFTWARE\CyberGhost HKLM\SOFTWARE\Dolby HKLM\SOFTWARE\Elcom HKLM\SOFTWARE\ESET HKLM\SOFTWARE\Flash Memory Toolkit HKLM\SOFTWARE\Foxit Software HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\Huawei technologies HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\KasperskyLab HKLM\SOFTWARE\Knowles HKLM\SOFTWARE\LexmarkLaser HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\magnet HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\MeadCo HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nitro HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\Prolific Technology INC HKLM\SOFTWARE\Ralink HKLM\SOFTWARE\RealNetworks HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Safer Networking Limited HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\SSoftware Downloader HKLM\SOFTWARE\Swearware HKLM\SOFTWARE\Tencent =>.Superfluous.Tencent HKLM\SOFTWARE\TrendMicro HKLM\SOFTWARE\TuneUp HKLM\SOFTWARE\uTorrent Turbo Accelerator HKLM\SOFTWARE\Visicom Media HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\Windows HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\Wow6432Node HKCU\SOFTWARE\AceTools HKCU\SOFTWARE\alexpage.de HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ASProtect HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\ChromeExtension HKCU\SOFTWARE\CoreAAC HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Cygnus Solutions HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\DSP-worx HKCU\SOFTWARE\Dz4-EvEr HKCU\SOFTWARE\Elcom HKCU\SOFTWARE\eviacam HKCU\SOFTWARE\FileOpen HKCU\SOFTWARE\FlashPeak HKCU\SOFTWARE\Flux HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GameHouse HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\INTEL HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\KGB Archiver HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\MFPT HKCU\SOFTWARE\MGSoft HKCU\SOFTWARE\Michael Herf HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MP_ALL HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NITRO HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\SeriousBit HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\SpeedBit HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\URSoft HKCU\SOFTWARE\uTorrent Turbo Accelerator HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Visicom Media HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Monitored HKCU\SOFTWARE\AppDataLow\Software\settings ---\\ Contents of the Common Files folders (216) - 86s O43 - CFD: 27/10/2014 - [0] D -- C:\Program Files\A-FF Find and Mount O43 - CFD: 19/01/2015 - [0] D -- C:\Program Files\Ace Translator O43 - CFD: 03/02/2013 - [] D -- C:\Program Files\Adobe O43 - CFD: 16/04/2016 - [] D -- C:\Program Files\AVG Web TuneUp O43 - CFD: 06/05/2014 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Cisco O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 09/02/2015 - [0] D -- C:\Program Files\CyberGhost 5 O43 - CFD: 23/10/2013 - [0] D -- C:\Program Files\DelThumbs O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 07/02/2015 - [] D -- C:\Program Files\ESET O43 - CFD: 12/04/2014 - [] D -- C:\Program Files\Foxit Software O43 - CFD: 28/03/2013 - [] D -- C:\Program Files\GameTop.com O43 - CFD: 05/04/2014 - [] RASHD -- C:\Program Files\Golden Filter Premium O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 29/01/2015 - [] D -- C:\Program Files\GUM40A3.tmp =>.Google Inc® O43 - CFD: 29/01/2015 - [] D -- C:\Program Files\GUM8E47.tmp =>.Google Inc® O43 - CFD: 22/03/2013 - [] D -- C:\Program Files\GUMCAAF.tmp =>.Google Inc® O43 - CFD: 04/11/2013 - [] D -- C:\Program Files\GUMF6DB.tmp =>.Google Inc® O43 - CFD: 29/04/2016 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 08/08/2010 - [] D -- C:\Program Files\Intel O43 - CFD: 01/10/2012 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 20/05/2014 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 04/01/2012 - [] D -- C:\Program Files\ITE O43 - CFD: 15/03/2013 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Kaspersky Lab =>.Kaspersky Lab® O43 - CFD: 17/03/2014 - [] D -- C:\Program Files\Lexmark O43 - CFD: 31/01/2015 - [0] D -- C:\Program Files\ma-config.com O43 - CFD: 05/04/2013 - [0] D -- C:\Program Files\Magical Jelly Bean O43 - CFD: 12/09/2014 - [0] D -- C:\Program Files\Malwarebytes Anti-Malware O43 - CFD: 08/04/2014 - [] D -- C:\Program Files\ManyCam =>.Superfluous.VisicomMedia O43 - CFD: 09/01/2014 - [] D -- C:\Program Files\MeadCo Neptune O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 09/03/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 01/01/2014 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 10/05/2014 - [] D -- C:\Program Files\MobiConnect =>.HUAWEI Technologies Co., Ltd.® O43 - CFD: 06/05/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild O43 - CFD: 15/10/2013 - [] D -- C:\Program Files\MSECache O43 - CFD: 13/05/2014 - [] D -- C:\Program Files\Nitro =>.Nitro PDF Software® O43 - CFD: 16/04/2014 - [] D -- C:\Program Files\Participatory Culture Foundation O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Ralink =>.Ralink Technology Corporation® O43 - CFD: 20/07/2011 - [] D -- C:\Program Files\Real O43 - CFD: 08/08/2010 - [] D -- C:\Program Files\Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 24/11/2014 - [] D -- C:\Program Files\SDA O43 - CFD: 30/06/2014 - [0] RD -- C:\Program Files\Skype O43 - CFD: 11/04/2014 - [0] D -- C:\Program Files\SlimBrowser O43 - CFD: 23/10/2011 - [] D -- C:\Program Files\Spybot - Search & Destroy =>.Safer Networking Ltd.® O43 - CFD: 28/01/2015 - [0] HD -- C:\Program Files\Temp O43 - CFD: 08/09/2014 - [] D -- C:\Program Files\Tencent =>.Superfluous.Tencent O43 - CFD: 11/04/2014 - [] D -- C:\Program Files\Tipard Studio O43 - CFD: 10/01/2014 - [0] D -- C:\Program Files\TuneUp Utilities 2013 O43 - CFD: 13/01/2014 - [0] D -- C:\Program Files\TuneUp Utilities 2014 O43 - CFD: 18/03/2013 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 02/11/2013 - [0] D -- C:\Program Files\uTorrent Turbo Accelerator O43 - CFD: 11/10/2013 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 11/10/2013 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 22/10/2011 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 20/09/2012 - [] D -- C:\Program Files\WinRAR O43 - CFD: 27/03/2013 - [] D -- C:\Program Files\Your Uninstaller! 7 O43 - CFD: 05/07/2014 - [0] D -- C:\Program Files\ZHPDiag O43 - CFD: 19/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 18/03/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 06/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 19/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 03/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security O43 - CFD: 19/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 08/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia O43 - CFD: 09/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 10/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MobiConnect O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ralink Wireless O43 - CFD: 29/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 20/09/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 27/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7 O43 - CFD: 11/04/2014 - [] D -- C:\ProgramData\ABBYY O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 09/02/2015 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 10/02/2015 - [] D -- C:\ProgramData\AVG Security Toolbar O43 - CFD: 16/04/2016 - [] D -- C:\ProgramData\AVG2015 O43 - CFD: 25/09/2011 - [] D -- C:\ProgramData\Avira O43 - CFD: 27/01/2013 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 10/05/2014 - [] D -- C:\ProgramData\DataCardService O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\FileOpen O43 - CFD: 16/03/2013 - [] D -- C:\ProgramData\Funny Bear Studio O43 - CFD: 07/05/2016 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 24/04/2014 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 28/08/2011 - [] D -- C:\ProgramData\McAfee O43 - CFD: 16/04/2016 - [] D -- C:\ProgramData\MFAData O43 - CFD: 20/06/2014 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 06/02/2014 - [] D -- C:\ProgramData\MobiConnect O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Nitro O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\Ralink O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 22/10/2011 - [] D -- C:\ProgramData\Real O43 - CFD: 30/06/2014 - [] D -- C:\ProgramData\Skype O43 - CFD: 23/10/2011 - [] D -- C:\ProgramData\Spybot - Search & Destroy O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 29/08/2011 - [] D -- C:\ProgramData\Sun O43 - CFD: 22/10/2011 - [] D -- C:\ProgramData\SuperMP3Download O43 - CFD: 01/09/2012 - [] D -- C:\ProgramData\SystemSpeedBooster O43 - CFD: 07/12/2011 - [] D -- C:\ProgramData\TechSmith O43 - CFD: 07/05/2016 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 06/09/2014 - [] D -- C:\ProgramData\Tencent =>.Superfluous.Tencent O43 - CFD: 10/01/2014 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 27/01/2013 - [0] SHD -- C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16} O43 - CFD: 27/01/2013 - [0] HDC -- C:\ProgramData\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A} O43 - CFD: 10/01/2014 - [0] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 11/07/2011 - [0] SHD -- C:\ProgramData\سطح المكتب O43 - CFD: 11/07/2011 - [0] SHD -- C:\ProgramData\قائمة ابدأ O43 - CFD: 16/08/2011 - [] D -- C:\Program Files\Common Files\Akamai O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Common Files\AV O43 - CFD: 08/02/2012 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 01/04/2013 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 15/03/2013 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 15/10/2013 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 13/05/2014 - [] D -- C:\Program Files\Common Files\Nitro O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 03/06/2014 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 23/03/2013 - [] D -- C:\Program Files\Common Files\SpeedBit O43 - CFD: 09/11/2011 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 13/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Adobe O43 - CFD: 09/02/2015 - [] D -- C:\Users\رياض\AppData\Roaming\AVG2015 O43 - CFD: 26/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\DeviceDoctorSoftware O43 - CFD: 07/05/2016 - [] D -- C:\Users\رياض\AppData\Roaming\DMCache O43 - CFD: 24/10/2013 - [] D -- C:\Users\رياض\AppData\Roaming\Downloaded Installations O43 - CFD: 18/04/2012 - [] D -- C:\Users\رياض\AppData\Roaming\driveridentifier O43 - CFD: 22/07/2011 - [0] D -- C:\Users\رياض\AppData\Roaming\DRPSu O43 - CFD: 24/09/2011 - [] D -- C:\Users\رياض\AppData\Roaming\ESET O43 - CFD: 21/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Foxit Software O43 - CFD: 16/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\gtk-2.0 O43 - CFD: 11/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Identities O43 - CFD: 07/05/2016 - [] D -- C:\Users\رياض\AppData\Roaming\IDM O43 - CFD: 29/04/2016 - [] D -- C:\Users\رياض\AppData\Roaming\InstallShield O43 - CFD: 22/10/2011 - [] D -- C:\Users\رياض\AppData\Roaming\IObit O43 - CFD: 22/09/2012 - [] D -- C:\Users\رياض\AppData\Roaming\KumaLLC O43 - CFD: 13/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Macromedia O43 - CFD: 24/04/2014 - [0] D -- C:\Users\رياض\AppData\Roaming\Malwarebytes O43 - CFD: 08/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia O43 - CFD: 14/07/2009 - [0] D -- C:\Users\رياض\AppData\Roaming\Media Center Programs O43 - CFD: 25/04/2014 - [] SD -- C:\Users\رياض\AppData\Roaming\Microsoft O43 - CFD: 06/05/2016 - [] D -- C:\Users\رياض\AppData\Roaming\Mozilla O43 - CFD: 18/03/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Nitro O43 - CFD: 02/04/2013 - [] D -- C:\Users\رياض\AppData\Roaming\Nitro PDF O43 - CFD: 16/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Participatory Culture Foundation O43 - CFD: 09/06/2012 - [] D -- C:\Users\رياض\AppData\Roaming\Passware O43 - CFD: 18/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\PCF-VLC O43 - CFD: 23/10/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Real O43 - CFD: 22/10/2011 - [] D -- C:\Users\رياض\AppData\Roaming\RegistryKeys O43 - CFD: 26/01/2012 - [] D -- C:\Users\رياض\AppData\Roaming\SeriousBit O43 - CFD: 30/06/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Skype O43 - CFD: 11/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\SlimBrowser O43 - CFD: 07/09/2011 - [] D -- C:\Users\رياض\AppData\Roaming\SuperMP3Download O43 - CFD: 01/09/2012 - [] D -- C:\Users\رياض\AppData\Roaming\SystemSpeedBooster O43 - CFD: 08/09/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Tencent =>.Superfluous.Tencent O43 - CFD: 09/02/2015 - [] D -- C:\Users\رياض\AppData\Roaming\TuneUp Software O43 - CFD: 21/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\URSoft O43 - CFD: 27/04/2012 - [] D -- C:\Users\رياض\AppData\Roaming\USBSafelyRemove O43 - CFD: 02/11/2013 - [] D -- C:\Users\رياض\AppData\Roaming\uTorrent O43 - CFD: 19/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\vlc O43 - CFD: 11/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\WinRAR O43 - CFD: 29/08/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Zbshareware Lab O43 - CFD: 07/05/2016 - [] D -- C:\Users\رياض\AppData\Roaming\ZHP O43 - CFD: 11/04/2014 - [] D -- C:\Users\رياض\AppData\Local\Adobe O43 - CFD: 22/09/2012 - [0] D -- C:\Users\رياض\AppData\Local\Akamai O43 - CFD: 11/07/2011 - [0] SHD -- C:\Users\رياض\AppData\Local\Application Data O43 - CFD: 26/04/2012 - [] D -- C:\Users\رياض\AppData\Local\Apps O43 - CFD: 09/02/2015 - [] D -- C:\Users\رياض\AppData\Local\Avg2015 O43 - CFD: 07/05/2016 - [] D -- C:\Users\رياض\AppData\Local\Diagnostics O43 - CFD: 24/11/2014 - [] D -- C:\Users\رياض\AppData\Local\Downloaded Installations O43 - CFD: 06/05/2016 - [] D -- C:\Users\رياض\AppData\Local\ElevatedDiagnostics O43 - CFD: 26/05/2014 - [] SHD -- C:\Users\رياض\AppData\Local\EmieSiteList O43 - CFD: 26/05/2014 - [] SHD -- C:\Users\رياض\AppData\Local\EmieUserList O43 - CFD: 24/09/2011 - [] D -- C:\Users\رياض\AppData\Local\ESET O43 - CFD: 30/06/2014 - [] D -- C:\Users\رياض\AppData\Local\Facebook O43 - CFD: 29/04/2016 - [] D -- C:\Users\رياض\AppData\Local\Google O43 - CFD: 11/07/2011 - [0] SHD -- C:\Users\رياض\AppData\Local\History O43 - CFD: 21/09/2012 - [] D -- C:\Users\رياض\AppData\Local\KumaGames O43 - CFD: 09/11/2014 - [] D -- C:\Users\رياض\AppData\Local\Macromedia O43 - CFD: 07/12/2014 - [] D -- C:\Users\رياض\AppData\Local\ManyCam =>.Superfluous.VisicomMedia O43 - CFD: 09/02/2015 - [] D -- C:\Users\رياض\AppData\Local\MFAData O43 - CFD: 04/07/2014 - [] D -- C:\Users\رياض\AppData\Local\Microsoft O43 - CFD: 29/07/2011 - [] D -- C:\Users\رياض\AppData\Local\Microsoft Games O43 - CFD: 10/05/2012 - [] D -- C:\Users\رياض\AppData\Local\Microsoft_Corporation O43 - CFD: 27/03/2013 - [0] DC -- C:\Users\رياض\AppData\Local\MigWiz O43 - CFD: 29/04/2016 - [] D -- C:\Users\رياض\AppData\Local\MiniService O43 - CFD: 11/07/2011 - [] D -- C:\Users\رياض\AppData\Local\Mozilla O43 - CFD: 24/01/2013 - [] D -- C:\Users\رياض\AppData\Local\Programs O43 - CFD: 03/06/2014 - [] D -- C:\Users\رياض\AppData\Local\Skype O43 - CFD: 07/12/2011 - [] D -- C:\Users\رياض\AppData\Local\TechSmith O43 - CFD: 07/05/2016 - [] D -- C:\Users\رياض\AppData\Local\temp O43 - CFD: 11/07/2011 - [0] SHD -- C:\Users\رياض\AppData\Local\Temporary Internet Files O43 - CFD: 11/04/2014 - [] D -- C:\Users\رياض\AppData\Local\Tipard Studio O43 - CFD: 25/07/2011 - [] D -- C:\Users\رياض\AppData\Local\VirtualStore O43 - CFD: 24/01/2013 - [0] D -- C:\Users\رياض\AppData\Local\Programs\Common O43 - CFD: 19/07/2011 - [] RD -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 22/05/2014 - [] RD -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 16/09/2012 - [] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux O43 - CFD: 10/05/2012 - [0] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 03/08/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 19/07/2011 - [] RD -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 08/09/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QQPlayer O43 - CFD: 22/05/2014 - [] RD -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 20/09/2012 - [] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 1s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - مكتبة DLL الخاصة بملحق Shell للتخزين المحسّ.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: IDM Shell Extension [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - واجهة مستخدم ذاكرة التخزين المؤقت من جانب ا.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - امتداد Shell الخاص بالمشاركة.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ System Drivers List (187) - 317s O58 - SDL:2014/07/05 01:04:15 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\000C0ADF.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/06 19:52:54 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\014612D8.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/06 23:46:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\045A587D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/30 18:36:44 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\05091CEF.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/29 21:12:39 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\07AD4839.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/30 14:14:54 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0A4419CD.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/22 22:20:34 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0D906E7E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/15 06:20:35 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0D9F54BE.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/11 05:39:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0F505691.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/24 13:39:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\100D58C4.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/31 22:11:16 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\121C68CA.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/13 15:30:20 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1407329E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/28 19:29:43 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\143E0261.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/01 17:42:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\166527E5.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/31 11:53:15 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\185528BB.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/20 20:06:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\187C5224.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/26 23:23:28 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\194B232F.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/04 05:03:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1972619E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/19 13:51:06 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1B701781.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/04 20:39:22 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1C8E042D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/16 23:23:39 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1CA37659.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/12 15:20:21 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1E3A777E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/11 22:04:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1ED42145.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/26 07:33:07 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\20444DED.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/02 15:43:47 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\21A0337E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/18 22:30:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\26B137B9.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/04 12:55:18 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\27A7322E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/25 16:12:18 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2B693EDB.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/07 08:34:07 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2B9E4E83.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/09 19:02:59 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2C2E1DF7.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/09 22:21:12 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2DE7693B.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/10 08:28:11 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2E69383D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/23 11:17:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\306044FE.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/02 20:56:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\34F61707.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/14 05:57:39 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\35AF4D68.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/31 21:27:02 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\381D516E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/09 05:55:10 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\38314630.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/22 15:16:58 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3A1D3883.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/30 14:11:42 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3C3C2C32.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/03 06:05:47 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3D360A14.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/19 13:46:26 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\40522CA3.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/04/29 14:34:00 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\427A7AA6.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/13 04:09:35 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\42BE082A.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/22 10:36:55 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\48230029.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/23 22:26:33 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\48F64D48.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/30 21:09:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\49AD438E.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/22 23:15:23 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4A983B30.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/06 15:51:23 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4D0D73A1.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/04/29 22:29:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4D6675E7.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/08 15:56:56 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4E186041.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/02 17:17:35 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4F957855.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/13 10:08:16 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4FBF5CAC.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/03 16:21:28 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4FFE5E45.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/17 14:07:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\54B56566.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/19 13:50:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\55525D95.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/08 11:45:43 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\56597BCE.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/27 16:07:03 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\569048FB.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/28 20:11:42 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\56B70A00.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/04 12:14:53 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\588C643F.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/04 17:32:15 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\58F572AD.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/06 12:41:34 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5951435B.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/04 16:38:12 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\59F45F12.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/05 13:55:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5A9C40B2.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/12 15:58:45 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5AC9246D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/16 09:47:24 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5D534F0A.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/30 11:43:27 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5ED30D06.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/24 06:57:28 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5F7D458B.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/10 13:40:16 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\605856EE.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/24 12:03:05 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\618B2A7C.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/27 20:56:56 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\626B0A46.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/08 13:37:14 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\630D0E61.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/09 09:09:35 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\63997A67.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/11 07:13:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\65C62BD7.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/25 07:34:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\65F03B44.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/23 21:21:00 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\66617E1D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/10 15:17:47 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\66E535B8.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/04 15:39:26 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\66EB41A4.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/11 13:56:00 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6707683B.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/12 18:03:38 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\67A8466D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/02 09:31:03 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\68761779.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/19 20:46:45 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\690300E9.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/07 19:00:41 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6A99598F.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/20 14:19:03 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6AAB5A6E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/09 11:57:34 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6BDE7961.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/03 13:21:44 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\70A93529.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/06/24 13:56:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\715A3720.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/03 20:44:20 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\71CE5FFC.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/28 11:22:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\71D22E64.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/08/09 05:42:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\73285CF3.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/05/23 08:43:06 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\740230D1.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/11 08:01:06 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\79DF4B2A.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/17 14:58:03 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\7C3B3E77.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/03 08:42:54 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\7C964022.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/07/17 21:27:01 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\7DEB7147.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation O58 - SDL:2005/03/16 07:23:54 RA . (.BIOSTAR Group - I/O Interface driver file.) -- C:\Windows\System32\drivers\BIOS.sys [13696] O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - برنامج تشغيل I/F التسلسلي لـ Brotehr (WDM)‎.) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2010/05/17 16:11:22 A . (.BIOSTAR Group - I/O Interface driver file.) -- C:\Windows\System32\drivers\BS_I2cIo.sys [6272] O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2014/09/22 08:20:06 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\EpfwLWF.sys [37928] =>.ESET, spol. s r.o.® O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation O58 - SDL:2010/10/08 09:55:06 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [25856] =>.Huawei Tech. Co., Ltd. O58 - SDL:2013/03/04 09:20:27 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [199168] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/21 02:55:42 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ewusbwwan.sys [380416] =>.Huawei Technologies Co., Ltd. O58 - SDL:2010/09/26 11:09:22 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [19200] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/01/25 02:16:33 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [95232] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [77824] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [101248] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [70528] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [27776] =>.Huawei Technologies Co., Ltd. O58 - SDL:2013/04/10 09:45:19 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [207872] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/12/22 02:46:02 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [11904] =>.Huawei Technologies Co., Ltd. O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2011/03/11 06:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows® O58 - SDL:2012/08/02 01:23:14 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [97632] =>.Tonec Inc.® O58 - SDL:2009/06/10 22:19:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [4756480] =>.Intel Corporation O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2014/02/20 12:59:02 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [135264] =>.Kaspersky Lab® O58 - SDL:2016/04/29 17:00:00 A . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x86].) -- C:\Windows\System32\drivers\klflt.sys [112136] =>.Kaspersky Lab® O58 - SDL:2014/04/10 17:25:32 A . (.Kaspersky Lab ZAO - KLHK [fre_wlh_x86].) -- C:\Windows\System32\drivers\klhk.sys [34400] =>.Kaspersky Lab® O58 - SDL:2016/04/29 17:00:01 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klif.sys [644808] =>.Kaspersky Lab® O58 - SDL:2014/02/25 13:09:02 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\Windows\System32\drivers\klim6.sys [25696] =>.Kaspersky Lab® O58 - SDL:2014/03/28 17:51:02 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x8.) -- C:\Windows\System32\drivers\klkbdflt.sys [24672] =>.Kaspersky Lab® O58 - SDL:2013/08/08 17:10:58 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klmouflt.sys [25696] =>.Kaspersky Lab® O58 - SDL:2013/04/12 15:34:48 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x86].) -- C:\Windows\System32\drivers\klpd.sys [14432] =>.Kaspersky Lab® O58 - SDL:2014/03/25 16:26:04 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wxp_x86].) -- C:\Windows\System32\drivers\kltdi.sys [45024] =>.Kaspersky Lab® O58 - SDL:2014/03/26 17:05:26 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wxp_x86].) -- C:\Windows\System32\drivers\kneps.sys [145888] =>.Kaspersky Lab® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2013/12/06 14:37:48 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\Windows\System32\drivers\mcaudrv.sys [29728] =>.Superfluous.VisicomMedia O58 - SDL:2013/11/27 02:54:00 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\Windows\System32\drivers\mcvidrv.sys [40736] =>.Superfluous.VisicomMedia O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2010/08/06 00:42:34 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [861696] =>.DiBcom SA O58 - SDL:2010/12/28 19:55:20 A . (.Ralink Technology Corp. - Ralink 802.11n Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28u.sys [1174880] =>.Ralink Technology Corporation® O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows® O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:02:52 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [139776] =>.Realtek Corporation O58 - SDL:2009/06/18 20:45:02 A . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\Windows\System32\drivers\RTKVAC.SYS [4172832] =>.Realtek Semiconductor Corp® O58 - SDL:2012/02/21 20:25:02 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3952680] =>.Realtek Semiconductor Corp® O58 - SDL:2009/07/13 23:02:52 A . (.Realtek Semiconductor Corporation - Realtek 10/100 NDIS 5.1 Driver.) -- C:\Windows\System32\drivers\Rtnicxp.sys [43008] =>.Realtek Semiconductor Corporation O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2003/07/16 13:27:40 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\Windows\System32\drivers\ser2pl.sys [43264] =>.Prolific Technology Inc. O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:40:22 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [35288] =>.OpenVPN Technologies, Inc.® O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ File Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - ‎‎مشغل الأداة الإضافية لعارض الأحداث.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - ‎‎محرر التسجيل.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Start Menu Internet (8) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. ---\\ Search Browser Infection (3) - 3s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {95B7759C-8C7F-4BF1-B163-73684A933233} [DefaultScope] - (AVG Secure Search) - http://mysearch.avg.com/ =>PUP.Optional.MyWebSearch O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Search Svchost Services (33) - 3s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - خدمة نشر شهادة البطاقة الذكية لـ Microsoft.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - خدمة نشر شهادة البطاقة الذكية لـ Microsoft.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي لخدمة الخادم.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - عميل نهج المجموعة.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - خدمة صوت Windows.) -- C:\Windows\System32\audiosrv.dll [473600] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - إدارة الطلب التلقائي للوصول عن بُعد.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - خدمة الإعلام بأحداث النظام (SENS).) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [521216] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - عامل Windows Update.) -- C:\Windows\System32\wuaueng.dll [1973728] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - خدمة النقل الذكي في الخلفية.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي لخدمات Windows Sh.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي الخاصة بخدمة تسجي.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - خدمة معلومات التطبيقات.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - خدمة اكتشاف iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - خدمة جدولة فئات تعدد الوسائط.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - تقارير المشاكل وحلولها.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - خدمة جدولة المهام.) -- C:\Windows\System32\schedsvc.dll [750592] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - خدمة تكوين سطح المكتب البعيد.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي لخدمة مستعرض الكم.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي لخدمات نُسق Windo.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - خدمة BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - خدمة تثبت البرامج.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation ---\\ Search Tracing Registry Key (2) - 7s HKLM\SOFTWARE\Microsoft\Tracing\DriverCure_RASAPI32 =>.Superfluous.Paretologic HKLM\SOFTWARE\Microsoft\Tracing\DriverCure_RASMANCS =>.Superfluous.Paretologic ---\\ Additional Scan (O88) (14) - 0s HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ManyCam =>.Superfluous.VisicomMedia HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ManyCam =>.Superfluous.VisicomMedia HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Tencent =>.Superfluous.Tencent HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia C:\ProgramData\Tencent =>.Superfluous.Tencent C:\Users\رياض\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia C:\Users\رياض\AppData\Roaming\Tencent =>.Superfluous.Tencent C:\Users\رياض\AppData\Local\ManyCam =>.Superfluous.VisicomMedia HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} =>PUP.Optional.MyWebSearch HKLM\SOFTWARE\Microsoft\Tracing\DriverCure_RASAPI32 =>.Superfluous.Paretologic HKLM\SOFTWARE\Microsoft\Tracing\DriverCure_RASMANCS =>.Superfluous.Paretologic ---\\ Summary of the elements found (6) - 0s http://www.nicolascoolman.fr/?p=220 =>PUP.Optional.MyWebSearch http://www.nicolascoolman.com/forum/post33405.html#p33405 =>.Superfluous.VisicomMedia http://www.nicolascoolman.info/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect http://www.nicolascoolman.fr/?p=368 =>.Superfluous.Tencent http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Orphean http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Paretologic ~ End of the scan, 15995 items in 00h19mn59s (872)(0)